Privacy Policy
AvantTrack — https://www.avanttrack.com
Effective Date: April 10, 2026
Last Updated: April 10, 2026
1. Introduction
AvantTrack ("we", "our", or "us") operates the website located at https://www.avanttrack.com (the "Service"). This Privacy Policy explains how we collect, use, disclose, and safeguard your personal information when you visit our website or sign up for our waitlist or subscription services.
We are committed to protecting your privacy in accordance with the General Data Protection Regulation (GDPR) (EU) 2016/679, the California Consumer Privacy Act (CCPA) as amended by the California Privacy Rights Act (CPRA), and other applicable data protection laws. Please read this policy carefully. If you do not agree with its terms, please discontinue use of the Service.
2. Data Controller
For the purposes of the GDPR, the data controller is AvantTrack. You can contact us at privacy@avanttrack.com.
3. Information We Collect
We collect information in two ways: information you provide directly, and information collected automatically.
3.1 Information You Provide Directly
| Data Type | When Collected | Purpose |
|---|---|---|
| Email address | When you join the waitlist | To send product updates and launch notifications |
| First name (optional) | When you join the waitlist | To personalise communications |
| Email address | When you create an account | To authenticate you and manage your subscription |
| Billing information | When you subscribe to a paid plan | Processed by our payment provider; we do not store card details |
| UTM taxonomy data | When you use the product | To provide the core Service functionality |
3.2 Information Collected Automatically
When you visit our website, we may automatically collect certain technical information, including your IP address (anonymised), browser type and version, operating system, referring URL, pages visited, and time spent on pages. This data is collected through Umami Analytics, a privacy-first, cookie-free analytics tool that does not use cookies and does not track individuals across websites. We do not use Google Analytics, Facebook Pixel, or any third-party advertising trackers on this website.
4. Legal Basis for Processing (GDPR)
Under the GDPR, we rely on the following legal bases to process your personal data:
| Processing Activity | Legal Basis | GDPR Article |
|---|---|---|
| Sending waitlist updates | Consent (freely given, specific, informed, unambiguous) | Art. 6(1)(a) |
| Providing the Service to subscribers | Performance of a contract | Art. 6(1)(b) |
| Processing payments | Performance of a contract | Art. 6(1)(b) |
| Fraud prevention and security | Legitimate interests | Art. 6(1)(f) |
| Compliance with legal obligations | Legal obligation | Art. 6(1)(c) |
| Anonymised analytics | Legitimate interests (no personal data processed) | Art. 6(1)(f) |
Where we rely on consent as our legal basis, you have the right to withdraw that consent at any time without affecting the lawfulness of processing carried out before withdrawal. You may withdraw consent by clicking "Unsubscribe" in any email we send you, or by contacting us at privacy@avanttrack.com.
5. How We Use Your Information
We use the information we collect to operate and improve the Service, including processing your account registration, managing your subscription, and providing customer support. We communicate with you about your account via transactional emails such as subscription confirmations, payment receipts, and security notices. Where you have given consent, we send marketing communications about AvantTrack. We also use data to detect, investigate, and prevent fraudulent transactions and other illegal activities, and to comply with legal obligations including responding to lawful requests from public authorities.
We do not sell, rent, or trade your personal information to third parties for their own marketing purposes.
6. Data Sharing and Third-Party Processors
We share your personal data only with trusted third-party service providers who process data on our behalf under written data processing agreements:
| Processor | Purpose | Location | Safeguard |
|---|---|---|---|
| Kit (ConvertKit) | Waitlist and email marketing | United States | Standard Contractual Clauses (SCCs) |
| Supabase | Database and authentication | United States / EU (configurable) | SCCs / EU hosting available |
| Lemon Squeezy | Payment processing and billing | United States | SCCs |
| Umami Analytics | Anonymised website analytics | Self-hosted / EU | No personal data transferred |
We do not transfer your personal data to any country outside the European Economic Area (EEA) without ensuring an appropriate safeguard is in place, such as Standard Contractual Clauses approved by the European Commission.
7. Cookies
Our website does not use cookies for analytics or advertising. We use Umami Analytics, which is a cookieless solution. The only cookies that may be set are strictly necessary session cookies required for authentication once you log in to your AvantTrack account. These cookies are essential for the Service to function and cannot be disabled.
8. Data Retention
We retain your personal data only for as long as necessary to fulfil the purposes for which it was collected, or as required by law:
| Data Type | Retention Period |
|---|---|
| Waitlist email address | Until you unsubscribe or request deletion |
| Account data | Duration of your subscription + 90 days after account closure |
| Billing records | 7 years (legal/tax obligation) |
| Anonymised analytics | Aggregated indefinitely (no personal data) |
9. Your Rights Under GDPR (EEA and UK Residents)
If you are located in the European Economic Area or the United Kingdom, you have the following rights under the GDPR:
| Right | Description |
|---|---|
| Right of access | Request a copy of the personal data we hold about you. |
| Right to rectification | Request that we correct inaccurate or incomplete personal data. |
| Right to erasure | Request that we delete your personal data, subject to certain legal exceptions. |
| Right to restriction | Request that we restrict the processing of your data in certain circumstances. |
| Right to data portability | Request a copy of your data in a structured, machine-readable format. |
| Right to object | Object to processing based on legitimate interests or for direct marketing. |
| Right to withdraw consent | Where processing is based on consent, withdraw it at any time. |
| Right to lodge a complaint | Lodge a complaint with your local data protection supervisory authority. |
To exercise any of these rights, please contact us at privacy@avanttrack.com. We will respond within 30 days. You can find your EU supervisory authority at https://edpb.europa.eu/about-edpb/board/members_en.
10. Your Rights Under CCPA/CPRA (California Residents)
If you are a California resident, the CCPA as amended by the CPRA grants you the following rights:
| Right | Description |
|---|---|
| Right to Know | Request disclosure of what personal information we collect, use, and disclose. |
| Right to Delete | Request deletion of personal information we have collected from you. |
| Right to Correct | Request correction of inaccurate personal information. |
| Right to Opt-Out of Sale | We do not sell or share your personal information. |
| Right to Non-Discrimination | We will not discriminate against you for exercising your rights. |
To submit a verifiable consumer request, please contact us at privacy@avanttrack.com with the subject line "CCPA Request". We will respond within 45 days.
Shine the Light (Cal. Civ. Code § 1798.83): We do not disclose personal information to third parties for their direct marketing purposes.
11. Children's Privacy
The Service is not directed to individuals under the age of 16. We do not knowingly collect personal information from children under 16. If you believe we have inadvertently collected such information, please contact us immediately at privacy@avanttrack.com and we will take steps to delete it.
12. Security
We implement appropriate technical and organisational measures to protect your personal data against accidental or unlawful destruction, loss, alteration, unauthorised disclosure, or access. These measures include encrypted data transmission (TLS/HTTPS), database-level row security policies, and access controls limited to authorised personnel. However, no method of transmission over the internet is 100% secure, and we cannot guarantee absolute security.
13. Links to Third-Party Websites
Our website may contain links to third-party websites. We are not responsible for the privacy practices of those websites and encourage you to review their privacy policies before providing any personal information.
14. Changes to This Privacy Policy
We may update this Privacy Policy from time to time. When we make material changes, we will update the "Last Updated" date at the top of this page and, where required by law, notify you by email. Your continued use of the Service after any changes constitutes your acceptance of the updated policy.
15. Contact Us
For any questions, concerns, or requests relating to this Privacy Policy or your personal data, please contact us at:
AvantTrack — Data Privacy
Email: privacy@avanttrack.com
Website: https://www.avanttrack.com
EU/UK residents: response within 30 days
California residents: response within 45 days
© 2026 AvantTrack. All rights reserved.